Workplace Ninja Summit 2026
14/09/2026, Trafo Baden
Baden, Switzerland
Azure Virtual Desktop at Scale: Why Your Landing Zone Matters More Than You Think
azure-security
azure-virtual-desktop
azure-landing-zone
microsoft-intune
azure-security-assessment
Many organizations jump into Azure Virtual Desktop to solve an end-user computing challenge, but quickly run into issues that are not AVD problems at all. Networking is inconsistent, permissions are unclear, identity is not structured properly, and security teams start raising concerns. AVD is deployed, but the Azure foundation underneath was never designed for it.
In this session, we step back and focus on what really makes AVD successful: a scalable and secure Azure foundation. I will explain how enterprise environments design Azure Landing Zones that properly support Azure Virtual Desktop, covering identity, network design, management structure, governance, and security baselines. Without this foundation, AVD environments often grow in an uncontrolled way, leading to operational overhead, security risks, and costly redesigns later.
We will look at common patterns seen in real customer environments, including setups that started small, for example with a Cloud Management Gateway or a few workloads, and evolved into complex environments with public exposure, excessive permissions, and missing governance. I will show how to identify these gaps using automation and assessments, and how to move toward a structured Landing Zone model that supports AVD at scale.
This session is based on real-world experience from Azure security assessments and Landing Zone implementations, with a strong focus on making AVD environments sustainable, secure, and ready for growth.